Litestar-org

    Dashboard / Vendors

    Products: 1
    Vulnerabilities: 9
    Known Exploited: 0
    0
    Critical Level Threats
    6
    High Level Threats
    3
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-48061

    Litestar: AllowedHostsMiddleware bypasses host validation via client-controlled X-Forwarded-Host header

    Last Modified: Aug 04, 2026
    Published: Aug 03, 2026

    CVE-2026-48060

    Litestar: HTML Injection Through CSRF Token

    Last Modified: Jul 28, 2026
    Published: Jul 28, 2026

    CVE-2026-25480

    FileStore key canonicalization collisions allow response cache mixup/poisoning (ASCII ord + Unicode NFKD)

    Last Modified: Apr 18, 2026
    Published: Feb 09, 2026

    CVE-2026-25479

    Litestar has an AllowedHosts validation bypass due to unescaped regex metacharacters in configured host patterns

    Last Modified: Apr 17, 2026
    Published: Feb 09, 2026

    CVE-2026-25478

    Litestar has a CORS origin allowlist bypass due to unescaped regex metacharacters in allowed origins

    Last Modified: Apr 18, 2026
    Published: Feb 09, 2026
    Items Per Page
    Litestar-Org Vulnerabilities & Security CVEs | CVE-DB